Community Forums
Connect with us on LinkedIn
+ Reply to Thread
Results 1 to 2 of 2
  1. #1
    Member
    Join Date
    Jan 2006
    Location
    Czestochowa, Poland
    Posts
    58
    cPanel/Enkompass Access Level

    DataCenter Provider

    Default how to secure dns zone edit on dedicated server

    Hi,

    I have problem:

    I have three servers (dedicated for some companies)
    I have shared hosting on others several servers
    I have three own dns servers

    My shared hosting servers are in dns-cluster with my dns servers
    Also the dedicated servers are in dns-cluster with the same dns serves.

    Problem is, that the dedicated server's customer should have root access on own server.
    But when he is logged as root on WHM he can EDIT all dns zones on all my servers (shared and other dedicated). I don't know how to resolve this security problem. Root access is needed for customer, and offering dedicated server I must to give him my dns serves for use ...

    So I can't see any solution, to resolve this security problem ... ?

    Thanks for help.

    Wojtek

  2. #2
    Member Miraenda's Avatar
    Join Date
    Jul 2004
    Location
    Coralville, Iowa USA
    Posts
    244

    Default

    Why must you give him your DNS to use if he has a dedicated server? He can create his own privately registered DNS nameservers. I would not cluster his machine to your nameservers in this instance at all. Instead, just put a DNS zone for his domain onto your nameservers initially so his machine will work but without clustering his machine to yours, then tell him to use his domain to privately register DNS nameservers at his domain registrar (if you registered the domain for him, setup his private nameservers for him there to point to his dedicated machine's IPs).

    It is never a good idea to give a dedicated machine clustering access to your nameservers. They are best served creating their own private nameservers. This way, they can run BIND on their own dedicated machine and control their own zones (and you don't have to process their zones on your cluster).
    Last edited by Miraenda; 07-13-2010 at 08:43 AM.

Similar Threads & Tags
Similar threads

  1. Edit DNS Zone (Elaborate on what this server is)
    By summitscout in forum Feature Requests for cPanel/WHM
    Replies: 1
    Last Post: 11-04-2010, 03:09 PM
  2. Edit DNS Zone gives "Internal Server Error"
    By erick_paper in forum cPanel and WHM Discussions
    Replies: 0
    Last Post: 12-16-2008, 09:28 PM
  3. Edit DNS Zone or DNS server (BIND)
    By blogipid in forum cPanel and WHM Discussions
    Replies: 4
    Last Post: 03-05-2006, 11:02 AM
  4. edit dns zone
    By [ah] phu in forum cPanel and WHM Discussions
    Replies: 1
    Last Post: 03-25-2005, 12:34 AM
  5. Edit a DNS Zone to point ALL mail to Exchange server?
    By ThunderHostingDotCom in forum cPanel and WHM Discussions
    Replies: 0
    Last Post: 11-29-2003, 02:05 PM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube